Ransomware attacks against industrial firms rise sharply in early 2025

Vimal Kapur Chairman and Chief Executive Officer - Honeywell
Vimal Kapur Chairman and Chief Executive Officer - Honeywell
0Comments

Ransomware attacks against industrial operators increased by 46% from the last quarter of 2024 to the first quarter of 2025, according to Honeywell’s latest Cybersecurity Threat Report. The report also identified a significant rise in both malware and ransomware incidents during this period, including a sharp increase in the use of a trojan targeting credential theft among industrial operators.

Paul Smith, director of Honeywell Operational Technology (OT) Cybersecurity Engineering and author of the report, said: “Industrial operations across critical sectors like energy and manufacturing must avoid unplanned downtime as much as possible – which is precisely why they are such attractive ransomware targets. These attackers are evolving fast, leveraging ransomware-as-a-service kits to compromise the industrial operations that keep our economy moving.”

The United States’ Cybersecurity and Infrastructure Security Agency (CISA) defines substantial cybersecurity incidents as those resulting in unauthorized access that causes major operational downtime or impairment. Industry data indicates that unplanned downtime from cyberattacks or equipment failures costs Fortune 500 companies about $1.5 trillion annually, accounting for roughly 11% of their revenue.

Honeywell researchers based their findings on an analysis of more than 250 billion logs, 79 million files, and 4,600 incident events blocked across its global installed base. The report broadened its focus to include threats delivered via Human Interface Devices (HID), such as mice, charging cords for mobile devices, laptops, and other peripherals commonly used during software updates or patching on-premise systems.

Smith added: “With increasingly significant threats and updated SEC reporting regulations requiring the disclosure of material cybersecurity incidents, industrial operators must act decisively to mitigate costly unplanned downtime and risks, including those linked to safety. Leveraging Zero Trust architecture and AI for security analysis can speed detection and enable smarter decision making and proactive defense in an increasingly complex digital landscape.”

Honeywell operates globally across several industries with business segments focused on automation, aviation’s future, energy transition, building automation, aerospace technologies, industrial automation, and sustainability solutions. More information about Honeywell is available at www.honeywell.com/newsroom.



Related

Eddie M. Buffaloe Jr., Secretary

Temporary restraining order issued in Wilson motel nuisance case

A Superior Court judge issued a temporary restraining order against America’s Best Value Inn in Wilson after an investigation into ongoing criminal activity at the property. The court’s action restricts use of the motel while legal proceedings continue.

John Bradford Knott, U.S. Representative for North Carolina's 13th Congressional District

Brad Knott criticizes SPLC and celebrates end of legislative delay in recent tweets

Congressman Brad Knott shared opinions about legislative gridlock and public organizations in tweets posted on June 9 and June 10, 2026.

John Bradford Knott, U.S. Representative for North Carolina's 13th Congressional District

House passes Secure America Act to restore ICE and CBP funding after extended shutdown

Congressman Brad Knott announced that House Republicans passed legislation restoring ICE and CBP funding after over 100 days of agency shutdowns. The Secure America Act aims to resume border enforcement operations amid ongoing partisan disputes.

Trending

The Weekly Newsletter

Sign-up for the Weekly Newsletter from North Raleigh Today.